Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

How can I visualize "table _raw" in the same format as the search result for the raw events in default Splunk search screen ?

$
0
0
When I search for my events by giving index=myindex, I get my data in the proper format. But when i try to print it out in a table, by using "index=myindex | table _raw" the formatting changes and I get the data in a different format. How can get output of "table _raw" in the same way as events display in default search page. Can it be done at query level or HTML or CSS level ? Thanks in advance for your help.

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>